mediumCVSS 4.8Vulnerability

GHSA-5326-6f73-m96w

## Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-5f9p-f3w2-fwch. This link is maintained to preserve external references. ## Original Description OpenClaw versions prior to 2026.2.22 contain an allowlist parsing mismatch vulnerability in the macOS companion app that allows authenticated operators to bypass exec approval checks. Attackers with operator.write privileges and a paired macOS beta node can craft shell-chain payloads that pass incomplete allowlist validation and execute arbitrary commands on the paired host.

Properties

ghsa_id
GHSA-5326-6f73-m96w
severity
medium
summary
Duplicate Advisory: OpenClaw macOS companion app (beta): allowlist parsing mismatch for system.run shell chains
cvss_score
4.8
cve_id
GHSA-5326-6f73-m96w
cvss_vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:L
is_ghsa_only
true
ghsa_published
2026-03-19T03:30:57Z
source_url
https://github.com/advisories/GHSA-5326-6f73-m96w
ghsa_updated
2026-03-19T18:21:40Z

Related Entities (3)

AFFECTS (1)

[Software]npm/OpenClaw

HAS_WEAKNESS (1)

[Weakness]Incomplete List of Disallowed Inputs

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-5326-6f73-m96w (CVSS 4.8) — Ninja Signal Threat Intelligence | Ninja Signal